Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=aboutsong.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 10, 2026
Valid Until
July 09, 2026
54 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1C:A4:7D:DA:C6:FA:AB:3F:1E:12:D4:35:35:D3:37:3C:EB:68:3D:A1:A0:56:57:AD:45:6A:BB:94:BC:6F:D5:64
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
redirector.live
*.redirector.live
aboutsong.com
*.aboutsong.com
accessklientboostplatform.co
*.accessklientboostplatform.co
amiif.bike
*.amiif.bike
anlikbilg.info
*.anlikbilg.info
antesternum.com
*.antesternum.com
bathroomandtilecityglasgow.co.uk
*.bathroomandtilecityglasgow.co.uk
*.random.bathroomandtilecityglasgow.co.uk
bliestek.com
*.bliestek.com
dedoa.church
*.dedoa.church
deepsentinelservices.com
*.deepsentinelservices.com
defaiqtum.com
*.defaiqtum.com
defietstourist.com
*.defietstourist.com
demsra.com
*.demsra.com
dental-health-35730.click
*.dental-health-35730.click
dental-implants-10186.click
*.dental-implants-10186.click
dental-implants-455447529.click
*.dental-implants-455447529.click
dental-implants-79215.click
*.dental-implants-79215.click
dental-implants-for-seniors-1066.click
*.dental-implants-for-seniors-1066.click
dental-implants-for-seniors-5992.click
*.dental-implants-for-seniors-5992.click
dental-implants-for-seniors-9585.click
*.dental-implants-for-seniors-9585.click
dental-implants-seniors-47233.click
*.dental-implants-seniors-47233.click
depression-testing-onlinee.sbs
*.depression-testing-onlinee.sbs
doujiaow3.com
*.doujiaow3.com
dr-mahloul.com
*.dr-mahloul.com
dtogx.forsale
*.dtogx.forsale
dudulluescortara.xyz
*.dudulluescortara.xyz
dunyabilgi.info
*.dunyabilgi.info
ilrxb.church
*.ilrxb.church
influence.lat
*.influence.lat
infonetpoint.biz
*.infonetpoint.biz
instantlycampaignservicesreach.co
*.instantlycampaignservicesreach.co
lumma.my
*.lumma.my
oneroom.uk
*.oneroom.uk
oracleofsounds.com
*.oracleofsounds.com
pqbec.my
*.pqbec.my
prgyqs.top
*.prgyqs.top
profistore.biz
*.profistore.biz
pueazu.com
*.pueazu.com
rckds.forsale
*.rckds.forsale
showerbead.com
*.showerbead.com
travelwithassurance.live
*.travelwithassurance.live
vr3dlgbys9d.cc
*.vr3dlgbys9d.cc
vurea.tienda
*.vurea.tienda
vv7683.com
*.vv7683.com
Other domains in certificate